Domain Information
WordPress Version: 6.9.1 VULNERABLE
Theme: flatsome (theme used by 146,386 domains)
Last Checked: 2026-07-19 04:50:42
HTTPS: Yes
Plugins (13)
| Plugin | Version | Used By |
|---|---|---|
| convertplug | — | 4,040 |
| elementor | — | 1,707,286 |
| elementor-pro | — | 1,017,560 |
| faraz-sms | — | 377 |
| kerasno-sms | — | 319 |
| rate-my-post | — | 6,026 |
| smart-offers | — | 122 |
| speedix-optimizer | — | 19 |
| spotplayer-1 | — | 20 |
| wc-protect-external-link | — | 86 |
| woocommerce | — | 789,108 |
| wp-post-to-pdf | — | 5 |
| yith-woocommerce-account-funds-premium | — | 161 |
Security Headers
B
Grade B
1 missing header
Missing headers:
- X-Frame-Options — Prevents clickjacking ?
Exposed Files & Configurations
This domain has publicly accessible security-sensitive files or configurations:
- Vulnerable WordPress Version (6.9.1) — wp2shell unauthenticated RCE (CVE-2026-63030). Update to 6.9.5 immediately.
Need help securing your WordPress infrastructure? Contact us for a professional security audit.